Anwendungssicherheit
🟠 CVE-2025-15662: High Schwachstelle
The Printcart Web to Print Product Designer for WooCommerce WordPress plugin before 2.5.3 does not restrict a user-supplied URL before...
🔴 CVE-2026-14289: Critical Schwachstelle
The FacturaONE para WooCommerce con VeriFactu WordPress plugin before 5.37 does not authenticate one of its request handlers, whose only...
🔴 CVE-2026-13597: Critical Schwachstelle
The 微信二维码登陆 WordPress plugin through 1.3 does not properly validate WeChat webhook requests, as its signature check always passes, and...
🔴 CVE-2026-13332: Critical Schwachstelle
The Masteriyo LMS WordPress plugin before 2.3.1 does not correctly verify authorization on an unauthenticated AJAX action used to clear...
🔴 CVE-2026-61511: Critical Schwachstelle
vBulletin 5.x through 5.7.5 and 6.x through 6.2.1 contains an eval injection vulnerability in the vB5_Template_Runtime::runMaths() method within the template...
ANWENDUNGSSICHERHEIT
NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats
Eight security flaws in NodeBB went public on Wednesday, along with the code to exploit them. Aikido Security rates all...
ANWENDUNGSSICHERHEIT
Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do
AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally, control. But what we've collectively...
🟡 CVE-2026-15425: Medium Schwachstelle
The Yoast SEO – Advanced SEO with real-time guidance and built-in AI plugin for WordPress is vulnerable to Stored Cross-Site...
🟡 CVE-2026-14955: Medium Schwachstelle
The Checkout Field Editor for WooCommerce (Pro) plugin for WordPress is vulnerable to Directory Traversal in all versions up to,...
🟠 CVE-2026-64298: High Schwachstelle
In the Linux kernel, the following vulnerability has been resolved: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC POSIX...